CVE-2004-1990

Aldo's Web Server (aweb) 1.5 allows remote attackers to gain sensitive information via an arbitrary character, which reveals the full path and the user running the aweb process, possibly due to a malformed request.
Configurations

Configuration 1 (hide)

cpe:2.3:a:aldo_vargas:aldos_web_server:1.5:*:*:*:*:*:*:*

History

20 Nov 2024, 23:52

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=108360629031227&w=2 - () http://marc.info/?l=bugtraq&m=108360629031227&w=2 -
References () http://secunia.com/advisories/11542 - Exploit, Vendor Advisory () http://secunia.com/advisories/11542 - Exploit, Vendor Advisory
References () http://www.oliverkarow.de/research/AldosWebserverMultipleVulns.txt - Exploit, Vendor Advisory () http://www.oliverkarow.de/research/AldosWebserverMultipleVulns.txt - Exploit, Vendor Advisory
References () http://www.osvdb.org/5880 - () http://www.osvdb.org/5880 -
References () http://www.securityfocus.com/bid/10262 - Exploit, Vendor Advisory () http://www.securityfocus.com/bid/10262 - Exploit, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/16047 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/16047 -

Information

Published : 2004-03-03 05:00

Updated : 2024-11-20 23:52


NVD link : CVE-2004-1990

Mitre link : CVE-2004-1990

CVE.ORG link : CVE-2004-1990


JSON object : View

Products Affected

aldo_vargas

  • aldos_web_server